Количество 3
Количество 3
CVE-2022-23045
PhpIPAM v1.4.4 allows an authenticated admin user to inject persistent JavaScript code inside the "Site title" parameter while updating the site settings. The "Site title" setting is injected in several locations which triggers the XSS.
CVE-2022-23045
PhpIPAM v1.4.4 allows an authenticated admin user to inject persistent ...
GHSA-v69x-m536-gjm5
PhpIPAM v1.4.4 allows an authenticated admin user to inject persistent JavaScript code inside the "Site title" parameter while updating the site settings. The "Site title" setting is injected in several locations which triggers the XSS.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-23045 PhpIPAM v1.4.4 allows an authenticated admin user to inject persistent JavaScript code inside the "Site title" parameter while updating the site settings. The "Site title" setting is injected in several locations which triggers the XSS. | CVSS3: 4.8 | 0% Низкий | около 4 лет назад | |
CVE-2022-23045 PhpIPAM v1.4.4 allows an authenticated admin user to inject persistent ... | CVSS3: 4.8 | 0% Низкий | около 4 лет назад | |
GHSA-v69x-m536-gjm5 PhpIPAM v1.4.4 allows an authenticated admin user to inject persistent JavaScript code inside the "Site title" parameter while updating the site settings. The "Site title" setting is injected in several locations which triggers the XSS. | 0% Низкий | около 4 лет назад |
Уязвимостей на страницу